L2TP VPN sort of working but not routing ALL protocols and traffic

L2TP VPN sort of working but not routing ALL protocols and traffic

L2TP VPN sort of working but not routing ALL protocols and traffic
L2TP VPN sort of working but not routing ALL protocols and traffic
a week ago - last edited Sunday
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.3.0 Build 20250428 Rel.18967

All,

 

I've been fighting with this for a week, hoping someone can help.  I am using two ER605s in a remote office / central office confiuration.  The bottom line issue is that I can get some traffic (pings/traceroute) to properly traverse the tunnel but web traffic is not going through the same tunnel.  Also note that local traffic (servers on both sides of the VPN) work just fine.  For example, I can access the home office ER605 without an issue from the client network through the VPN.

 

for example, if I traceroute to ip dot me, it properly routes through the VPN and out the home site internet gateway.  However, if I, at the same time, open a browser to the same site (ip dot me), it shows my local (client site) internet gateway IP address as where I am coming from (same for showmyipaddress dot com)

 

Goal: I want ALL traffic (including internet traffic) to go out through the VPN and the home office internet connection, so it can all be managed / monitored / filtered.

 

Setup:

Home Office:

* Public IP address:100.14.120.12)
* WAN IP Address: 192.168.2.1, /24, 192.168.2.1 (this is behind a site firewall)

* L2TP Server:

   WAN: WAN

   IPSec Encryption: Auto

   Pre-Shared Key: (******)

    Status: Enable

* Tunnel List

   Mode: Server

   Local IP: 192.168.1.15

    Remote IP: 166.170.32.178

    Remote Local IP: 192.168.3.55

* Network --> LAN

    IP Address: 192.168.1.1

    255.255.255.0

    VLAN: 1

     IGMP Prosy: Enable

    IGMP Version: V2

 

Client 

* Publix IP Address: (again, hiding for obvious reasons): 192.168.1.72, 255.255.255.0, 192.168.1.1

* Transmission --> Load Balancing: Disabled

* Network / LAN

     Name: LAN

     VLAN: 1

     Isolation: Deisolated

     IP Address: 192.168.50.1

     Subnet: 255.2555.255.0

     DHCP Server: Enable

     DHCP relay: Disabled
* VPN --> L2TP Client     

     Tunnel: Home

     WAN: WAN1

     server ip: (dns name of home office er605)

     IPSec: Encrypted
     remore subnet: 0.0.0.0/0

     Working Mode: NAT

     Status: Enable
* VPN / L2TP / Tunnel List:
     Mode: Client

     Tunnel: Home

     Local IP: 192.168.3.55

     Remote IP: 100.14.120.12

     Remote Local IP: 192.168.1.15

     DNS:8.8.8.8

* Transmission / Routing / Policy Routing:

     Service Type: ALL
     Source: IPGROUP_ANY

     WAN: HOME

     Effictive Time: Any

     Mode: Only (note, I also tried priority, same result)

Some Screen shots:



 

....the 2.1 and the phlapa both show it is going out through the home office network.


Any ideas?  I've even tried static routes forcing specific addresses through (like this site)...always same result.

  0      
  0      
#1
Options
4 Reply
Re:L2TP VPN sort of working but not routing ALL protocols and traffic
a week ago - last edited Sunday

  @NewUser100 Instead of L2TP VPN, try OpenVPN. For the Central Office, set up the OpenVPN Server in Full Mode, and set up the remote office as the OpenVPN Client.


Just make sure the Server End is set to Full Mode so that all of the traffic from the Client device is sent across the tunnel connection. Let me know if that works!
 

How to Configure TP-Link Omada Gateway as OpenVPN Server on Standalone Mode

How to Configure TP-Link Omada Gateway as OpenVPN Client

  0  
  0  
#2
Options
Re:L2TP VPN sort of working but not routing ALL protocols and traffic
a week ago

  @NeilR_M 

 

Thanks for the suggestion. I've tried doing that, but have run into a snag.  The Hardware and software versions of the ER605s are as follows:

Server:

- Hardware :ER605 v1.0

- Firmware Version: 1.3.1 Build 20231207 Rel.61384

 

Client:

- Hardware: v2.20
- Firmware: 2.3.0 Build 20250428 Rel.18967

 

So, I successfully created the server and client, attached the two.  But same result, internet traffic not going across tunnel.  And, I can't specify the OpenVPN tunnel as an interface for Static or Policy routes, so not sure how to tell it to send the internet traffic (0.0.0.0/0) across that interface?

 

Doug
 

  0  
  0  
#3
Options
Re:L2TP VPN sort of working but not routing ALL protocols and traffic
a week ago

  @NewUser100 

 

Note, this is the top of the ovpn file imported:

client
dev tun
proto tcp
float
nobind
cipher AES-128-CBC
comp-lzo no
resolv-retry infinite
remote-cert-tls server
persist-key
remote 192.168.2.152 1194
redirect-gateway def1
dhcp-option DNS 8.8.8.8

  0  
  0  
#5
Options
Re:L2TP VPN sort of working but not routing ALL protocols and traffic
Monday

  @NewUser100 Can you please screenshot the OpenVPN configuration for both routers? I'd like to verify that the configuration is correct before continuing. 

  0  
  0  
#6
Options